Podcast Detail

SANS Stormcast Monday, June 15th, 2026: Arch Linux Malicious User Packages; Splunk Vuln and Exploit; Exploiting AI Coding Agents

If you are not able to play the podcast using the player below: Use this direct link to the audio file: https://traffic.libsyn.com/securitypodcast/9972.mp3

Podcast Logo
Arch Linux Malicious User Packages; Splunk Vuln and Exploit; Exploiting AI Coding Agents
00:00

My Next Class

Click HERE to learn more about classes Johannes is teaching for SANS

Atomic Arch: Attackers Hijack Trusted AUR Packages to Deliver Rootkit-Like Malware
https://www.sonatype.com/blog/atomic-arch-npm-campaign-adds-malicious-dependency

Why Use App-Level Auth When Every Database Has Auth? (Splunk Enterprise CVE-2026-20253 Pre-Auth RCE)
https://labs.watchtowr.com/why-use-app-level-auth-when-every-database-has-auth-splunk-enterprise-cve-2026-20253-pre-auth-rce/

A Fake Bug Report Hijacks Your AI Coding Agent – and Nothing Catches It.
https://tenetsecurity.ai/blog/agentjacking-coding-agents-with-fake-sentry-errors/

My Upcoming Classes
https://www.sans.org/profiles/dr-johannes-ullrich

no transcript found